Re: [PATCH RFC v1 1/3] bpf: move from sha1 to blake2s in tag calculation

From: Alexei Starovoitov
Date: Fri Jan 14 2022 - 11:19:32 EST


On Fri, Jan 14, 2022 at 7:08 AM Ard Biesheuvel <ardb@xxxxxxxxxx> wrote:
>
> Yeah, so the issue is that, at *some* point, SHA-1 is going to have to
> go.

sha1 cannot be removed from the kernel.
See AF_ALG and iproute2 source for reference.